@polkadot/rpc-rx
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| semgrep | semgrep:shady-links-raw-ip | AI (semgrep): The 127.0.0.1 address appears only in a JSDoc code example showing local node connection; it is documentation, not a live network request. | ai | |
| dependencies | unvetted-dep:@types/rx | AI (dependencies): @types/rx is a TypeScript type declaration package; no runtime security risk for this package. | ai | |
| dependencies | unvetted-dep:@types/memoizee | AI (dependencies): @types/memoizee is a TypeScript type declaration package; no runtime security risk for this package. | ai | |
| phantom-deps | phantom-dep:@types/rx | AI (phantom-deps): Type-only dependency not directly imported at runtime; standard pattern in older TS projects. | ai | |
| phantom-deps | phantom-dep:@types/memoizee | AI (phantom-deps): Type-only dependency not directly imported at runtime; standard pattern in older TS projects. | ai |
Versions (showing 51 of 363)
| Version | Deps | Published |
|---|---|---|
| 0.81.1 | 7 / 1 | |
| 0.80.1 | 7 / 1 | |
| 0.79.1 | 7 / 0 | |
| 0.78.1 | 7 / 0 | |
| 0.77.1 | 7 / 0 | |
| 0.76.1 | 7 / 0 | |
| 0.75.1 | 7 / 0 | |
| 0.53.1 | 7 / 0 | |
| 0.52.1 | 7 / 0 | |
| 0.51.1 | 7 / 0 | |
| 0.50.1 | 7 / 0 | |
| 0.49.1 | 7 / 0 | |
| 0.48.1 | 7 / 0 | |
| 0.47.1 | 7 / 0 | |
| 0.46.12 | 7 / 0 | |
| 0.46.11 | 7 / 0 | |
| 0.46.10 | 7 / 0 | |
| 0.46.9 | 7 / 0 | |
| 0.46.8 | 7 / 0 | |
| 0.46.7 | 7 / 0 | |
| 0.46.6 | 7 / 0 | |
| 0.46.5 | 7 / 0 | |
| 0.46.4 | 7 / 0 | |
| 0.46.3 | 7 / 0 | |
| 0.46.2 | 7 / 0 | |
| 0.46.1 | 7 / 0 | |
| 0.45.21 | 7 / 0 | |
| 0.45.20 | 7 / 0 | |
| 0.45.19 | 7 / 0 | |
| 0.45.18 | 7 / 0 | |
| 0.45.17 | 7 / 0 | |
| 0.45.16 | 7 / 0 | |
| 0.45.15 | 7 / 0 | |
| 0.45.14 | 7 / 0 | |
| 0.45.13 | 7 / 0 | |
| 0.45.12 | 7 / 0 | |
| 0.45.11 | 7 / 0 | |
| 0.45.10 | 7 / 0 | |
| 0.45.9 | 7 / 0 | |
| 0.45.8 | 7 / 0 | |
| 0.45.7 | 7 / 0 | |
| 0.45.6 | 7 / 0 | |
| 0.45.5 | 7 / 0 | |
| 0.45.4 | 7 / 0 | |
| 0.45.3 | 7 / 0 | |
| 0.45.2 | 7 / 0 | |
| 0.45.1 | 7 / 0 | |
| 0.44.1 | 7 / 0 | |
| 0.43.16 | 7 / 0 | |
| 0.43.15 | 7 / 0 | |
| 0.43.14 | 7 / 0 |
v0.81.1
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v0.80.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.79.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.78.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.77.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.76.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.75.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.53.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.52.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.51.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.50.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.49.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.48.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.47.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.12
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.11
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.10
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.9
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.8
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.7
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.6
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.5
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.4
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.3
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.2
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.46.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.21
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.20
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.19
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.18
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.17
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.16
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.15
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.14
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.13
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.12
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.11
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.10
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.9
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.8
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.7
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.6
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.5
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.4
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.3
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.2
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.45.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.44.1
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.43.16
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.43.15
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v0.43.14
1 findingPackage was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.